CVE-2011-4499
The UPnP IGD implementation in the Broadcom UPnP stack on the Cisco Linksys WRT54G with firmware before 4.30.5, WRT54GS v1 through v3 with firmware before 4.71.1, and WRT54GS v4 with firmware before 1.06.1 allows remote attackers to establish arbitrary…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.31%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The UPnP IGD implementation in the Broadcom UPnP stack on the Cisco Linksys WRT54G with firmware before 4.30.5, WRT54GS v1 through v3 with firmware before 4.71.1, and WRT54GS v4 with firmware before 1.06.1 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 1.31% probability · 69th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-16
- Affected
- cisco/linksys wrt54g router firmware · linksys/wrt54g · cisco/linksys wrt54gs router firmware · linksys/wrt54gs
- Source
- cve@mitre.org
References
- http://www.kb.cert.org/vuls/id/357851US Government Resource
- http://www.upnp-hacks.org/devices.html
- http://www.kb.cert.org/vuls/id/357851US Government Resource
- http://www.upnp-hacks.org/devices.html
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.